{"id":39861,"date":"2021-03-02T14:00:12","date_gmt":"2021-03-02T14:00:12","guid":{"rendered":"https:\/\/www.microsoft.com\/security\/blog\/?p=92886"},"modified":"2021-03-02T14:00:12","modified_gmt":"2021-03-02T14:00:12","slug":"microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/","title":{"rendered":"Microsoft unifies SIEM and XDR to help stop advanced attacks"},"content":{"rendered":"<p>For all of us in security, the last twelve months have been an incredible series of challenges\u2014from balancing remote work with family priorities, to helping build resilient businesses, and protecting against the latest attacks. 2020 showed us that while we have made great progress, there is still a lot we can do as individuals, organizations, and as a community to keep secure. Here at Microsoft, we\u2019re committed to applying these learnings to help create a stronger, more unified approach to security for all\u2014no matter what platform you\u2019re on, device you\u2019re trying to protect, or cloud your data is in.<\/p>\n<p>To help protect against advanced attacks, last September at Microsoft Ignite we shared our vision to create the most complete approach to securing your digital landscape, <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/threat-protection\" target=\"_blank\" rel=\"noopener noreferrer\">all under a single umbrella<\/a>. We combined the breadth of Azure Sentinel, our cloud-native SIEM (security information and event management) with the depth of Microsoft 365 Defender and Azure Defender, our XDR (extended detection and response) tools, to help fight against attacks that take advantage of today\u2019s diverse, distributed, and complex environments.<\/p>\n<p>Today we are taking the next step in unifying these experiences and delivering enhanced tools and intelligence to stop modern threats.<\/p>\n<h2>Unified experiences<\/h2>\n<p>Most SIEMs on the market today simply take logs from multiple sources. <a href=\"https:\/\/azure.microsoft.com\/en-us\/services\/azure-sentinel\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Azure Sentinel<\/strong><\/a> accepts logs across your environment with many third-party security products and can go a step further with Azure Defender and Microsoft 365 Defender. Starting today, <strong>incidents, schema, and&nbsp;alerts <\/strong>are shared between Azure Sentinel and Microsoft 365 Defender. This means you get a unified view in Azure Sentinel, then can seamlessly drill down into an incident for more context in Microsoft 365 Defender.<\/p>\n<p>For example: Start in Azure Sentinel for your bird\u2019s eye view to understand an overarching incident, then move directly into Microsoft 365 Defender to investigate an asset or a user in more detail. You can even remediate and close the incident directly within Microsoft 365 Defender, all while maintaining bi-directional syncing with Azure Sentinel. This is next level SIEM integration you won\u2019t find anywhere else.<\/p>\n<p>On the <a href=\"https:\/\/www.microsoft.com\/en-us\/microsoft-365\/security\/microsoft-365-defender\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Microsoft 365 Defender<\/strong><\/a> side, we are working to reduce the number of portal experiences. The goal is to have a single unified XDR experience for securing end-user environments, rather than a suite of products. Today marks a significant milestone in that effort as we <a href=\"http:\/\/aka.ms\/m365digniteblog\" target=\"_blank\" rel=\"noopener noreferrer\">integrate the capabilities<\/a> of Microsoft Defender for Endpoint and Defender for Office 365 together into the unified Microsoft 365 Defender portal. These changes simplify tasks that would require multiple experiences across comparable products in the market<strong>. <\/strong>We have also taken the opportunity to significantly enhance the email entity page with a <strong>new 360-degree view of email alerts<\/strong> with relevant context and email alert capabilities.<\/p>\n<h2>Enhanced tools and intelligence to stop advanced attacks<\/h2>\n<p>As well as unifying the capabilities of Microsoft Defender for Endpoint and Defender for Office 365 into Microsoft 365 Defender, we have also created new enhanced experiences including:<\/p>\n<ul>\n<li><a href=\"https:\/\/docs.microsoft.com\/en-us\/microsoft-365\/security\/mtp\/threat-analytics?view=o365-worldwide\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Threat Analytics<\/strong><\/a>, now in preview, provides detailed threat intelligence reports from expert Microsoft security researchers that help you understand, prevent, and mitigate active threats.<\/li>\n<li><strong>Learning Hub<\/strong> where you can use instructional resources with best practices and how-tos.<\/li>\n<li><a href=\"https:\/\/techcommunity.microsoft.com\/t5\/microsoft-security-and\/announcing-attack-simulation-training-in-microsoft-defender-for\/ba-p\/1704482\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Attack&nbsp;Simulation&nbsp;Training in Microsoft Defender for Office 365<\/strong><\/a> which helps you detect, prioritize, and remediate phishing risks.\u202fIt uses neutralized versions of real\u202fattacks\u202fto simulate the continually changing attacker landscape, enabling highly accurate and up-to-date detection of risky behavior, with rich reporting and analytics\u202fto help\u202fcustomers measure\u202ftheir progress.<\/li>\n<\/ul>\n<p>With<strong> Azure Sentinel<\/strong>, we\u2019re focused on giving you a richer organization-wide view with expanded data collection and helping you to respond faster with new incident response and automation capabilities. Today we are announcing more than 30 new connectors to simplify data collection across your entire environment, including multi-cloud environments. These new connectors include Salesforce service cloud, VMWare, Cisco Umbrella, and Microsoft Dynamics.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-92962 size-full\" src=\"https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot.png\" alt=\"New automation rules in Azure Sentinel\" width=\"2556\" height=\"1354\" srcset=\"https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot.png 2556w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot-300x159.png 300w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot-1024x542.png 1024w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot-768x407.png 768w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot-1536x814.png 1536w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/Sentinel-automation-screenshot-2048x1085.png 2048w\" sizes=\"auto, (max-width: 2556px) 100vw, 2556px\"><\/p>\n<p>We\u2019re also expanding <strong>Azure Sentinel\u2019s SOAR capabilities<\/strong>. Today we\u2019re introducing automation rules (a new and simple framework for automating common tasks), and new automation connectors with additional built-in SOAR playbooks. These new playbooks enable automation workflows such as blocking a suspicious IP address with Azure Firewall, isolating endpoint devices with Microsoft Intune, or updating the risk state of a user with Azure Active Directory Identity Protection. You can learn more about these Azure Sentinel innovations on the <a href=\"https:\/\/aka.ms\/sentinel-ignite-3-21-blog\" target=\"_blank\" rel=\"noopener noreferrer\">Azure Sentinel Microsoft Ignite 2021 announcement blog<\/a>.<\/p>\n<p>Finally, <a href=\"https:\/\/azure.microsoft.com\/en-us\/services\/azure-defender\/\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Azure Defender<\/strong><\/a> now provides improved alerts features, including improved triaging experience with better performance for larger alert lists, alerts from Azure Resource Graph, sample creation feature for Azure Defender alerts, and alignment with Azure Sentinel\u2019s incident experience. To learn more about these and other Azure Security Center announcements, please read the <a href=\"https:\/\/aka.ms\/asc-ignite2021blog\" target=\"_blank\" rel=\"noopener noreferrer\">Azure Security Center Microsoft Ignite 2021 announcement blog<\/a>.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone wp-image-92975 size-large\" src=\"https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-1024x576.jpg\" alt=\"Integrated threat protection from Microsoft comprises Azure Sentinel, a cloud-native SIEM, Microsoft 365 Defender that provides XDR capabilities for end-user environments, and Azure Defender that provides XDR capabilities for infrastructure and cloud platforms.\" width=\"1024\" height=\"576\" srcset=\"https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-1024x576.jpg 1024w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-300x169.jpg 300w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-768x432.jpg 768w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-687x385.jpg 687w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-1083x609.jpg 1083w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-767x431.jpg 767w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002-539x303.jpg 539w, https:\/\/www.microsoft.com\/security\/blog\/wp-content\/uploads\/2021\/03\/TP_circle_white_background_v1-002.jpg 1280w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\"><\/p>\n<h2>Looking ahead<\/h2>\n<p>We\u2019ve been on a long journey to figure out how to understand and help you protect against advanced attacks. We\u2019re only just getting started on our mission and will continue to unify tools and add intelligence to help keep your environment healthy and secure.<\/p>\n<p>Be sure to check out our <a href=\"https:\/\/myignite.microsoft.com\/sessions\/924ce977-92fc-455a-9911-4ef6639bd846?source=sessions\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>Microsoft Ignite session<\/strong>,<\/a> and learn more about our <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/threat-protection\" target=\"_blank\" rel=\"noopener noreferrer\"><strong>SIEM + XDR offering<\/strong><\/a>.<\/p>\n<p>As always, thank you for your continued partnership on this journey.<\/p>\n<p>To learn more about Microsoft Security solutions, <a href=\"https:\/\/www.microsoft.com\/en-us\/security\/business\/solutions\" target=\"_blank\" rel=\"noopener noreferrer\">visit our website<\/a>. Bookmark the <a href=\"https:\/\/www.microsoft.com\/security\/blog\/\" target=\"_blank\" rel=\"noopener noreferrer\">Security blog<\/a>&nbsp;to keep up with our expert coverage on security matters. Also, follow us at&nbsp;<a href=\"https:\/\/twitter.com\/@MSFTSecurity\" target=\"_blank\" rel=\"noopener noreferrer\">@MSFTSecurity<\/a>&nbsp;for the latest news and updates on cybersecurity.<\/p>\n<p>-Rob, Eric, and our entire Microsoft Security Team<\/p>\n<p> READ MORE <a href=\"https:\/\/www.microsoft.com\/security\/blog\/2021\/03\/02\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Learn how Microsoft is taking the next step in unifying experiences and delivering enhanced tools and intelligence to stop advanced attacks.<br \/>\nThe post Microsoft unifies SIEM and XDR to help stop advanced attacks appeared first on Microsoft Security. READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":39862,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[276],"tags":[6426,347,9177],"class_list":["post-39861","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-microsoft-secure","tag-azure-security","tag-cybersecurity","tag-integrated-threat-protection"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2021-03-02T14:00:12+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png\" \/>\n\t<meta property=\"og:image:width\" content=\"2556\" \/>\n\t<meta property=\"og:image:height\" content=\"1354\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Microsoft unifies SIEM and XDR to help stop advanced attacks\",\"datePublished\":\"2021-03-02T14:00:12+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/\"},\"wordCount\":920,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png\",\"keywords\":[\"Azure Security\",\"Cybersecurity\",\"Integrated Threat Protection\"],\"articleSection\":[\"Microsoft Secure\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/\",\"name\":\"Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png\",\"datePublished\":\"2021-03-02T14:00:12+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/03\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png\",\"width\":2556,\"height\":1354},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Azure Security\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/azure-security\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Microsoft unifies SIEM and XDR to help stop advanced attacks\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/","og_locale":"en_US","og_type":"article","og_title":"Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2021-03-02T14:00:12+00:00","og_image":[{"width":2556,"height":1354,"url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png","type":"image\/png"}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Microsoft unifies SIEM and XDR to help stop advanced attacks","datePublished":"2021-03-02T14:00:12+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/"},"wordCount":920,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png","keywords":["Azure Security","Cybersecurity","Integrated Threat Protection"],"articleSection":["Microsoft Secure"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/","url":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/","name":"Microsoft unifies SIEM and XDR to help stop advanced attacks 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png","datePublished":"2021-03-02T14:00:12+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2021\/03\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks.png","width":2556,"height":1354},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/microsoft-unifies-siem-and-xdr-to-help-stop-advanced-attacks\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"Azure Security","item":"https:\/\/www.threatshub.org\/blog\/tag\/azure-security\/"},{"@type":"ListItem","position":3,"name":"Microsoft unifies SIEM and XDR to help stop advanced attacks"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/39861","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=39861"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/39861\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/39862"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=39861"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=39861"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=39861"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}